EPMe-42 BIOS Reference Manual 65
Security Menu
Secure Boot Configuration
Secure Boot Option
Option Default: 01
00 = Disabled
01 = Enabled
Delete Platform Key
Option Help: PK will be deleted but keep other signatures such as KEK/db/dbx, which
allow platform owner to modify the secure boot variables without authentication. The
platform will be changed to setup mode, and secure boot is disabled automatically.
Delete All Signatures
Option Help: Delete all the secure boot signatures including PK/KEK/db/dbx.
The platform will be changed to setup mode, and secure boot is disabled
automatically.
Reset to Default
Option Help: Reset secure boot variables to manufacturing default including
PK/KEK/db/dbx.
Delete Signatures
Signatures Information
Enroll Signatures
Option Help: It helps the physical present user to enroll signatures from files into
signature database (db).
When the user clicks this menu item, the system displays file explorer. If the user
selects one file of the extension EFI, CER or DER, it will be enrolled as a signature into
signature database.